symfony/cache Security Advisories for v3.4.24 (2)
-
[CRITICAL] CVE-2019-18889: Forbid serializing AbstractAdapter and TagAwareAdapter instances
PKSA-w17b-j6zx-knvn CVE-2019-18889 GHSA-79gr-58r3-pwm3
Affected version: >=3.1.0,<3.2.0|>=3.2.0,<3.3.0|>=3.3.0,<3.4.0|>=3.4.0,<3.4.35|>=4.0.0,<4.1.0|>=4.1.0,<4.2.0|>=4.2.0,<4.2.12|>=4.3.0,<4.3.8
Reported by:
GitHub, FriendsOfPHP/security-advisories -
[HIGH] CVE-2019-10912: Prevent destructors with side-effects from being unserialized
PKSA-y75j-trtt-wgfj CVE-2019-10912 GHSA-w2fr-65vp-mxw3
Affected version: >=3.1.0,<3.2.0|>=3.2.0,<3.3.0|>=3.3.0,<3.4.0|>=3.4.0,<3.4.26|>=4.0.0,<4.1.0|>=4.1.0,<4.1.12|>=4.2.0,<4.2.7
Reported by:
GitHub, FriendsOfPHP/security-advisories